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Keeping an organization safe and Key benefits 


implementing a robust cybersecurity 
framework is a task beyond the scope 
of one particular software or solution. 
Enterprises need a reliable operating 
system to power the organization's 
workloads on the public or private 
cloud, while enabling their 
cybersecurity strategy and industry 


sector or national requirements at the Ubuntu LTS release 


same time. 


Predictable lifecycle 

Ubuntu LTS releases are made available every two years and are maintained for 
ten years with Ubuntu Advantage. Each release comes in two five-year phases, 
Standard support and Extended Security Maintenance. Both include security 
updates and kernel livepatching. 
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today’s security landscape in mind. Livepatching Livepatching 
Canonical collaborates with security 
organizations to gain access to 
vulnerabilities before they are public, Avdisbleswithtsubcersien 
ensuring that Ubuntu is as secure as it Available v 
can possibly be. Ubuntu Advantage 
customers can rely upon a trusted 
partner of the open source 
community that enables open source 
applications for high security and 
regulated environments, such as FIPS 
140 and Common Criteria. Ubuntu 
Advantage sets the Foundation For a 
cybersecurity Framework, with 
provenance, vulnerability 
management, hardening and 
compliance profiles such as CIS and 
DISA-STIG, while offering competitive 
economics. 
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Certified Compliance 

Regulated and high security environments have complex requirements, as they 
are designed to tackle many threats, known and unknown. Therefore, 
developing or running workloads in these environments requires rigid 
certifications. Ubuntu Advantage provides access to the necessary artifacts to 
comply with Common Criteria, an international (ISO/IEC 15408) computer 
security certification for high security environments, and FIPS 140, the U.S. 
government data protection profile. 
























































Secure configuration & hardening 

The default configuration of Ubuntu balances usability and security. However, 
systems carrying dedicated workloads can be Further hardened to reduce their 
attack surface. Canonical works with DISA to ensure the Security Technical 
Implementation Guides (STIG) are available for Ubuntu, and Ubuntu Advantage 
customers get access to certified CIS benchmark content to access the widely 
accepted hardening guide using the OpenSCAP tools. 
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Vulnerability Management Anti-exploitation defenses 


























System administrators are constantly being challenged Malicious software (malware) is the primary threat to 

from attackers looking to exploit software vulnerabilities. organisations today, and can have a severe impact on 
Defending infrastructure requires timely access to operations. Using malware, attackers might be able to 
software security updates (including kernel livepatching), capture passwords, steal or even destroy sensitive 

security advisories, and machine readable OVAL corporate data. Ubuntu comes with state-of-the-art 
vulnerability data For SIEM integration and automationfor anti-exploitation malware defenses. It enables the latest 
the lifecycle of all relevant systems. Extended Security industry best practices against vulnerability exploitation 
Maintenance (ESM) ensures that every one of these vectors, such as heap and stack protections, Address Space 
necessities are provided for Ubuntu’s 10-year lifecycle. Layout Randomization (ASLR), and non-executable 
Canonical ensures timely fixes for operating system memory. Ubuntu applications are compiled to take 
vulnerabilities, and targets a response time of up to 1 day advantage of the latest CPU security Features such as 

on average For critical and up to 14 days on average For Intel’s Control-flow Enforcement Technology (CET). Ubuntu 
high severity vulnerabilities. Furthermore, as each systems support UEFI secure boot, and receive automatic 
environment is impacted by a vulnerability differently, security updates by default. 

Canonical’s Standard and Advanced Support offer enables a 

quick Feedback path for vulnerabilities not classified as 

high or critical but disproportionately impact the 











organization's applications. 


How does Ubuntu Advantage compare to RHEL and SLES? 


While all companies distribute an operating system based on Linux, the technical implementations are very different. 
Ubuntu is based on the community-led Debian operating system, deriving conventions From it, while RHEL derives from 
Fedora (community based but led by Red Hat) and SuSe from OpenSuSe. The commercial terms are also very different, with 
Ubuntu Advantage enabling organizations to put an end to complex to implement per socket pricing policies and take 
advantage of a simple per host and per VM pricing policy’. 


Physical Server Cloud / VMs 


Operating system Pricing Yearly price Pricing Yearly price 
model model 
Host w/ 1 Host w/ 4 

CPU socket | CPU sockets ee OE 
Red Hat Enterprise Linux Per CPU : 
w/ Standard Support socket $799 $1598 Per VM-pair $799 $23970 
SuSe w/ Standard Per CPU ; 
Support & Livepatehing sodet $2150 $4300 Per VM-pair $2150 $64500 
DuA Cana EN Per host $750 $750 Per VM $250 $15000 


Standard Support 


Get started with Ubuntu 





To purchase Ubuntu Advantage, including cybersecurity offerings, please visit ubuntu.com/advantage or contact our 
team below. 





(UK) +44 203 656 5291 
(US) +1737 2040291 
email: sales@canonical.com 





1 A subscription that covers your estate of Ubuntu physical systems alllows for unlimited hosted VMs in the same estate. 
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